
Piergiorgio Ladisa
@piergiorgiolad
Security Researcher PhD Student @ SAP Security Research focusing on OSS Supply Chain security
ID: 1080782540858970112
https://github.com/piergiorgioladisa 03-01-2019 11:06:52
25 Tweet
72 Takipçi
180 Takip Edilen


Preventing SAP Customers from Leaking Secrets on Github blogs.sap.com/2022/09/06/pre… #password #leak #github #MachineLearning #CyberSecurity #saplabsfrance #SAP #codescan SAP Labs in France SAP Security

Just today, an article on software supply chain security, written with Wolfram Fischer, got published in the German IT magazine iX. It picks up our works on a taxonomy of supply chain attacks, done together with Piergiorgio Ladisa , @barais and Matias Sebastian Martinez...


Santiago Dan Lorenc Luke Hinds John Speed Meyers A few more resources: attack.mitre.org/techniques/T08… github.com/slsa-framework… arxiv.org/abs/2005.09535 arxiv.org/abs/2204.04008 youtube.com/watch?v=00R1JG… haydock.substack.com/p/what-is-a-so…


First day at ACM CCS 2025 2022. I’m really excited to attend the event in person and for this great experience. #softwaresecurity #opensource #supplychainattacks #SAP #securityresearch #INRIA #AssureMOSS #SPARTA


Risk Explorer to be presented by Volkmar Lotz at Trustworthy and Secure OSS. swforum.eu/trustworthy-an… Try the tool here: sap.github.io/risk-explorer-… AssureMOSS Piergiorgio Ladisa Henrik Plate


SAP Security Research RiskExplorer for SW supply chains finds in Endor Labs a new adopter and precious contributor.endorlabs.com/blog/exploring… Well done Piergiorgio Ladisa Henrik Plate S. N. Barai and Matias S. Martinez! AssureMOSS SAP Open Source SAP Labs in France #sapsecurityresearch


Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents. Based on the recent paper by Piergiorgio Ladisa, Henrik Plate, S. N. Barai and Matias S. Martinez. Link: [sap.github.io/risk-explorer-…] #opensource #CyberSecurity #BugBounty
![Securing Bits (@securing_bits) on Twitter photo Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents.
Based on the recent paper by <a href="/piergiorgioLad/">Piergiorgio Ladisa</a>, <a href="/HenrikPlate/">Henrik Plate</a>, <a href="/barais/">S. N. Barai</a> and Matias S. Martinez.
Link: [sap.github.io/risk-explorer-…]
#opensource #CyberSecurity #BugBounty Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents.
Based on the recent paper by <a href="/piergiorgioLad/">Piergiorgio Ladisa</a>, <a href="/HenrikPlate/">Henrik Plate</a>, <a href="/barais/">S. N. Barai</a> and Matias S. Martinez.
Link: [sap.github.io/risk-explorer-…]
#opensource #CyberSecurity #BugBounty](https://pbs.twimg.com/media/F0l_1sCXsAUnVbG.jpg)


Today's #ACSAC2023 paper #preview is Ladisa et al.'s work on detecting #malware in #npm and #PyPI packages using a language-independent approach. openconf.org/acsac2023/modu… Piergiorgio Ladisa Serena Elisa Ponta S. N. Barai SAP Inria Université de Rennes

Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents. It is based on the paper by Piergiorgio Ladisa, Henrik Plate, @barais and Matias S. Martinez. Link: [sap.github.io/risk-explorer-…] #applicationsecurity #opensource
![Securing Bits (@securing_bits) on Twitter photo Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents.
It is based on the paper by <a href="/piergiorgioLad/">Piergiorgio Ladisa</a>, <a href="/HenrikPlate/">Henrik Plate</a>, @barais and Matias S. Martinez.
Link: [sap.github.io/risk-explorer-…]
#applicationsecurity #opensource Taxonomy of attacks on open-source software supply chain based on 94 real-world incidents.
It is based on the paper by <a href="/piergiorgioLad/">Piergiorgio Ladisa</a>, <a href="/HenrikPlate/">Henrik Plate</a>, @barais and Matias S. Martinez.
Link: [sap.github.io/risk-explorer-…]
#applicationsecurity #opensource](https://pbs.twimg.com/media/GLMpg4faQAA67zL.jpg)